Virus and Spyware Removal Guides, uninstall instructions

PositivePlatform Adware (Mac)

What kind of application is PositivePlatform?

During a routine investigation of new submissions to the VirusTotal website, our researchers discovered the PositivePlatform app. Our examination revealed that it is advertising-supported software (adware) belonging to the AdLoad malware family. PositivePlatform is designed to run intrusive advertisement campaigns.

   
LaunchBrowser Adware (Mac)

What kind of application is LaunchBrowser?

Our research team discovered LaunchBrowser while investigating new submissions to the VirusTotal website. After inspecting this app, we determined that it is advertising-supported software (adware). Additionally, LaunchBrowser is part of the AdLoad malware family.

   
PositiveProcessor Adware (Mac)

What kind of application is PositiveProcessor?

PositiveProcessor is a rogue app that we found while reviewing new file submissions to VirusTotal. After investigating this piece of software, we determined that it is adware belonging to the AdLoad malware family. PositiveProcessor operates by running intrusive ad campaigns, and it may have other harmful abilities.

   
EasyStealer Malware

What kind of malware is EasyStealer?

EasyStealer is an information-stealing malware written in the Go programming language. This stealer emerged in July 2023 on a Russian hacker forum; on the 16th, EasyStealer's developers searched for beta testers, and on the 23rd – the first advert was posted. Since then, several variants of EasyStealer have been developed, and further updates are not unlikely.

   
Exela Stealer

What kind of malware is Exela?

Exela is the name of a powerful information-stealing malware recognized for its ability to exfiltrate a wide range of sensitive data from infected devices, posing a significant threat to both personal and organizational security. It can steal data from web browsers and other apps, take screenshots, and more.

   
CumulusFractus Malicious Extension

What kind of application is CumulusFractus?

While analyzing an untrustworthy installer obtained from an unreliable website, we came across the CumulusFractus browser extension. Our investigation revealed troubling attributes linked to this application, such as its capacity to enable the "Managed by your organization" feature in the Chrome browser, collect data, and manage browser components.

   
ReadText Ransomware

What kind of malware is ReadText?

Our research team found the ReadText ransomware while inspecting new submissions to the VirusTotal platform. This malicious program is part of the MedusaLocker ransomware family.

ReadText operates like standard ransomware. It encrypted the files on our test machine. Original filenames were appended with a ".readtext4" extension; note that the number may vary depending on the ransomware variant. For example, a file initially titled "1.jpg" appeared as "1.jpg.readtext4", "2.png" as "2.png.readtext4", etc.

Afterward, a ransom-demanding message named "How_to_back_files.html" was dropped. Based on this note, it is evident that ReadText targets companies and utilizes double-extortion tactics.

   
JPMorgan Chase Online Security Department Email Scam

What is "JPMorgan Chase Online Security Department"?

Upon investigation, it has been determined that the intent of this email is to deceive recipients into sharing their personal information. The scammers behind this email pose as representatives from the JPMorgan Chase online security department, aiming to deceive recipients into providing the requested information on the fraudulent form attached to the email.

   
Meduza Ransomware

What kind of malware is Meduza?

Meduza is a ransomware variant (belonging to the MedusaLocker family) that has been discovered during analysis of malware samples submitted to the VirusTotal page. The purpose of Meduza is to encrypt files. Also, it appends its extension (".meduza24" or similar) to filenames and creates a ransom note ("How_to_back_files.html").

An example of how files encrypted by Meduza are renamed: "1.jpg" is changed to "1.jpg.meduza24", "2.png" to "2.png.meduza24", and so forth.

   
Microsoft Ending Promotion Award Email Scam

What is "Microsoft Ending Promotion Award"?

After reviewing this email, it has come to our attention that it is a fraudulent message falsely claiming to be from Microsoft. The scammers behind this scam are trying to deceive recipients by claiming they have won a large amount of money. Their objective is to entice recipients to share personal information and potentially send money.

   

Page 175 of 2125

<< Start < Prev 171 172 173 174 175 176 177 178 179 180 Next > End >>
About PCrisk

PCrisk is a cyber security portal, informing Internet users about the latest digital threats. Our content is provided by security experts and professional malware researchers. Read more about us.

Malware activity

Global malware activity level today:

Medium threat activity

Increased attack rate of infections detected within the last 24 hours.

Virus and malware removal

This page provides information on how to avoid infections by malware or viruses and is useful if your system suffers from common spyware and malware attacks.

Learn about malware removal